US8230489B2

Secure authentication systems and methods

Summary by NHIP

Reverse Turing Test Authentication

The system authenticates users by requesting a valid username and password after detecting a stored cookie. It then demands responses to a Reverse Turing Test, which may be an audible sound or a random function, before granting access to resources like bank accounts.

Claim Score by NHIP

Read claim 1, the broadest

Abstract

Systems and methods are provided for authentication by combining a Reverse Turing Test (RTT) with password-based user authentication protocols to provide improved resistance to brute force attacks. In accordance with one embodiment of the invention, a method is provided for user authentication, the method including receiving a username/password pair associated with a user; requesting one or more responses to a first Reverse Turing Test (RTT); and granting access to the user if a valid response to the first RTT is received and the username/password pair is valid.

US8230489B2, drawing sheet 1
Sheet 1 of 5

Term

Term ended

Expired 25 April 2023, 3.4 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

18 claims: 1 independent, 17 dependent

  1. 1
    Broadest claimClaim Score 63, broad(NHIP)A method for user authentication performed by a system comprising a processor and a non-transitory computer-readable storage medium storing instructions that, when executed by the processor, cause the processor to perform the method, the method comprising:receiving a login request from a user attempting to access a resource;determining that a cookie is stored on a device associated with the user, the cookie indicating that the user has been previously authenticated;sending to the user a request for a valid username/password pair;receiving at least a predetermined number of invalid username/password pairs from the user;receiving the valid username/password pair from the user;and requesting one or more responses to a first Reverse Turing Test (RTT).